Open Source Case

There are nine security vulnerabilities affecting open source projects such as Espo CRM, Pimcore and Akauting. The bug can enable an authentic adversary to execute arbitrary javascript code that can launch attacks via a specially crafted HTTP request and can change the company associated with the user account. Forgot your password? The bug can also send out phishing emails from the app of the registered user containing a malicious link that when clicked, the bug can change your password.

 

Best,

 

Bingo

 

 

References:

 

https://thehackernews.com/2021/07/several-bugs-found-in-3-open-source.html

 

 

https://thecybersecurity.news/general-cyber-security-news/several-bugs-found-in-3-open-source-software-used-by-several-businesses-11530/

 

 

https://milled.com/aranet-llc/new-post-several-bugs-found-in-3-open-source-software-used-by-several-businesses-L6oRfzcOnbpWwhQb